Appearance
Vendors
Path: /vendors
Vendor Monitoring is the TPRM scorecard.
It lists vendors that have incidents in this tenant.
A letter grade is a scorecard.
Do not use A–F as the close action. See Scoring and attribution.
List
Each row shows:
| Column | Meaning |
|---|---|
| Vendor | Name and CNAMEs |
| Grade | Letter from the 0–100 posture score |
| Findings | Incident count |
| Critical | Critical incident count |
| Latest | Date of the latest incident |
| Scorecard | Open — vendor detail |
Letter grades map the 0–100 posture score:
- A is 90 or higher
- B is 80 or higher
- C is 70 or higher
- D is 60 or higher
- F is below 60
Select a grade bar to filter the list to that letter.
If the list is empty, add vendors on Configurations. See Configurations.
Vendor detail
Path: /vendors/:vendorId

The detail page shows:
- Posture meter and score
- Indicator and platform charts
- Severity trend
- Incident table
Each incident row shows a short summary, severity, confidence, category, and date.
Open an incident to read the brief.
Low-confidence findings still appear on the list.
Scorecard deductions are smaller when attribution confidence is lower.
Missing confidence uses full weight.
Scorecard vs decision
Use this page to compare vendor posture.
Use Reports and Exposures for evidence.